MicrosoftDocs/azure-docs/articles/web-application-firewall

Last 20 commits touching this section.

6955763

Update title of WAF exceptions list article Removed 'preview' from the title of the WAF exceptions list article.

bd98040

Update title of WAF exceptions list document

c897114

WAF AppGw IPv6 support (#321094) * Add IPv6 geo-based custom rules article for Application Gateway WAF (preview) Recreated from MicrosoftDocs/azure-docs-pr#317259 (closed). Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> * Update instructions for dual-stack Application Gateway Clarified that an existing IPv4-only Application Gateway cannot be updated or converted to dual-stack. * Apply LAA style suggestion: use active voice and contraction Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com> --------- Co-authored-by: kumud_microsoft <115841192+kumud_microsoft@users.noreply.github.com> Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

97d3bfc

Merge pull request #320900 from halkazwini/waf-3.2-cve Correct the WP2Shell WAF rule ID

5e5ae5b

docs: correct WP2Shell WAF rule ID Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

ef0716a

docs: add sovereign cloud FAQ and fix ruleset policy link Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

6f678b4

Use lowercase v2 in WAF applies-to banners Align the Applies to banner with canonical Application Gateway naming. The product overview is titled 'What is Azure Application Gateway v2?' and the SKUs are Standard_v2 and WAF_v2, so the banner now uses lowercase v2 across the WAF docset. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>

91dc369

Add WP2Shell managed WAF rule (#320391) * docs: add WP2Shell managed WAF rule * docs: apply WAF article style updates * docs: clarify WAF article titles * Update articles/web-application-firewall/ag/application-gateway-crs-rulegroups-rules.md Co-authored-by: learn-build-service-prod-01[bot] <274427437+learn-build-service-prod-01[bot]@users.noreply.github.com> * docs: refine WAF article introductions * docs: add WP2Shell CVE rule entries * docs: correct WP2Shell legacy rule entry --------- Co-authored-by: learn-build-service-prod-01[bot] <274427437+learn-build-service-prod-01[bot]@users.noreply.github.com>

55a8c28

Add Azure Front Door WAF match condition articles (#320182) * docs: add WAF network match condition articles * docs: correct WAF article title suffix metadata * docs: refresh WAF match condition articles * docs: add ms.reviewer to WAF match condition articles * docs: use active voice in ASN match condition article * docs: add WAF match condition articles to Front Door TOC * Apply batched suggestions from code review Co-authored-by: Courtney Wales <62625502+Court72@users.noreply.github.com> --------- Co-authored-by: Courtney Wales <62625502+Court72@users.noreply.github.com>

0704569

Document AFD WAF profile- and route-level policies (#319694) * Enhance WAF overview with policy attachment details Added sections on policy attachment scopes and precedence for WAF. * Update articles/web-application-firewall/afds/afds-overview.md Co-authored-by: learn-build-service-prod-05[bot] <274429479+learn-build-service-prod-05[bot]@users.noreply.github.com> * Clarify policy precedence in Azure Front Door WAF updating two lines based on AI suggestions. * Clarify WAF policy association instructions Updated the WAF policy association instructions to clarify the scope and domain selection process. * Update WAF FAQ with Azure Front Door policy details Added FAQ entries regarding Azure Front Door WAF policy scopes and behavior. * Enhance WAF policy settings documentation Added sections on policy scope and precedence, blocked-response configuration, and redirect URI requirements to the WAF policy settings documentation. * Enhance WAF tuning guidance with policy scope details Added section on understanding policy scope impact before tuning WAF rules and clarified the implications of disabling rules in the WAF policy. * Update WAF policy scope and cmdlet descriptions Clarified the scope association for WAF policies in Azure Front Door documentation and updated related cmdlet descriptions. * docs: remove stray blockquote marker * Update articles/web-application-firewall/afds/waf-front-door-tuning.md Co-authored-by: learn-build-service-prod-04[bot] <274428985+learn-build-service-prod-04[bot]@users.noreply.github.com> * fix: correct WAF FAQ YAML indentation * docs: update WAF article metadata * docs: refine WAF policy guidance --------- Co-authored-by: Luke <107073848+Miskatonic-Electronic@users.noreply.github.com> Co-authored-by: learn-build-service-prod-05[bot] <274429479+learn-build-service-prod-05[bot]@users.noreply.github.com> Co-authored-by: learn-build-service-prod-04[bot] <274428985+learn-build-service-prod-04[bot]@users.noreply.github.com>

d1cd555

Merge pull request #320120 from halkazwini/waf-drs-anomaly-scoring-action-599184 Add Anomaly score to the DRS per-rule action list

abc3f97

Add HTTP DDoS ruleset exception to the WAF overview rule-processing order (#320121) * docs: scope custom-vs-managed rule precedence and add HTTP DDoS ruleset exception * docs: apply editorial style fixes and add Related content section * docs: format action-type list and add Anomaly score action * docs: normalize bullet markers to hyphens

f2e6ec3

docs: simplify the DRS action list sentence

6ba1349

docs: italicize the Anomaly score action

7681447

docs: apply editorial style fixes

3cdaac6

docs: add Anomaly score to the DRS per-rule action list

b94b387

docs: add Related content section to Azure OpenAI WAF how-to

bca7d76

docs: use latest WAF managed rule sets in Azure OpenAI how-to

5cf7e8e

Convert Azure Front Door WAF PowerShell how-to to Standard/Premium (#320114) * docs: convert Front Door WAF PowerShell how-to to Standard/Premium (Az.Cdn) * docs: use DRS 2.2 in the WAF PowerShell managed rules example * docs: apply editorial style fixes * docs: link PowerShell quickstart and make module install non-interactive

2a493b9

Add application gateway for containers WAF guidance (#319758) * Add WAF configuration and verification steps Added required configuration steps for enabling WAF on Application Gateway for Containers, including Azure and Kubernetes configurations. Included verification steps for ensuring WAF is active and inspecting traffic. * Add WAF policy inspection FAQs for Application Gateway * fix: align imported WAF FAQ indentation * tweaks * link correction --------- Co-authored-by: Luke <107073848+Miskatonic-Electronic@users.noreply.github.com>